Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-16 14:59:02.608 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 14:59:02.341 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 14:59:02.376 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 14:59:02.341 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 14:59:02.422 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 14:59:39.361 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:45862 10 6452 1 2025-09-16 14:55:30.517 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:00:39.737 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35932 10 6452 1 2025-09-16 15:01:40.145 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58996 10 6452 1 2025-09-16 15:02:40.556 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:58838 10 6452 1 2025-09-16 15:03:40.985 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35556 10 6452 1 2025-09-16 15:04:02.658 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:04:02.564 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:04:02.535 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:04:02.328 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:04:02.410 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 14:59:30.505 00:06:00.020 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:04:41.385 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57254 10 6452 1 2025-09-16 15:05:41.794 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33004 10 6452 1 2025-09-16 15:06:42.200 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54336 10 6452 1 2025-09-16 15:02:30.521 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:07:42.602 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52238 10 6452 1 2025-09-16 15:08:43.004 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41022 10 6452 1 2025-09-16 15:09:02.675 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:09:02.608 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:09:02.441 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:09:02.515 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:09:02.599 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:09:43.410 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:45658 10 6452 1 2025-09-16 15:10:43.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57258 10 6452 1 2025-09-16 15:06:30.510 00:06:00.017 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:11:44.194 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45924 10 6452 1 2025-09-16 15:12:44.600 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60084 10 6452 1 2025-09-16 15:13:45.004 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-09-16 15:14:02.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:14:02.747 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:14:02.841 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:14:02.594 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:14:02.882 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:09:30.522 00:06:00.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:14:45.401 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:45690 10 6452 1 2025-09-16 15:15:45.762 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:48832 10 6452 1 2025-09-16 15:16:46.203 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34522 10 6452 1 2025-09-16 15:17:46.605 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48804 10 6452 1 2025-09-16 15:13:30.511 00:06:00.018 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:18:46.968 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36416 10 6452 1 2025-09-16 15:19:02.868 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:19:02.780 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:19:02.804 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:19:02.782 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:19:02.866 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:19:47.385 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40790 10 6452 1 2025-09-16 15:20:47.784 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56758 12 6556 1 2025-09-16 15:16:30.525 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:21:48.192 00:00:10.715 TCP 1.101.0.1:3000 -> 23.104.0.1:46442 10 6452 1 2025-09-16 15:22:48.943 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-09-16 15:23:49.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-09-16 15:24:02.868 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:24:02.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:24:02.923 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:24:02.790 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:24:03.007 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:24:49.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33740 10 6452 1 2025-09-16 15:20:30.516 00:06:00.016 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:25:50.176 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49022 10 6452 1 2025-09-16 15:26:50.578 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-09-16 15:27:50.976 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46968 10 6452 1 2025-09-16 15:23:30.528 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:29:02.926 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:29:03.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:29:03.086 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:28:51.385 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49832 10 6452 1 2025-09-16 15:29:02.932 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:29:03.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:29:51.794 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49014 10 6452 1 2025-09-16 15:30:52.205 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51212 10 6452 1 2025-09-16 15:31:52.611 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60780 10 6452 1 2025-09-16 15:27:30.516 00:06:00.016 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:32:53.010 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60228 10 6452 1 2025-09-16 15:34:03.081 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:34:03.137 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:33:53.409 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39642 10 6452 1 2025-09-16 15:34:02.991 00:00:00.040 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:34:03.117 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:34:03.075 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:34:53.814 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37650 10 6452 1 2025-09-16 15:30:30.530 00:06:00.003 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:35:54.228 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:56680 10 6452 1 2025-09-16 15:36:55.032 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:37090 10 6452 1 2025-09-16 15:37:55.410 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39322 10 6452 1 2025-09-16 15:39:03.032 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:39:03.217 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:39:02.962 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:39:03.285 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:39:03.367 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:38:55.820 00:00:10.946 TCP 1.101.0.1:3000 -> 23.104.0.1:35078 10 6452 1 2025-09-16 15:34:30.522 00:06:00.015 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:39:56.816 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48234 10 6452 1 2025-09-16 15:40:57.222 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41192 10 6452 1 2025-09-16 15:41:57.633 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45028 10 6452 1 2025-09-16 15:37:30.534 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 7 497 1 2025-09-16 15:42:58.030 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40776 10 6452 1 2025-09-16 15:44:03.558 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:44:03.237 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:44:03.068 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:44:03.057 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:44:03.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:43:58.432 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39130 10 6452 1 2025-09-16 15:44:58.837 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:51716 10 6452 1 2025-09-16 15:45:59.225 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48948 10 6452 1 2025-09-16 15:41:30.525 00:06:00.012 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:46:59.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34608 10 6452 1 2025-09-16 15:47:59.994 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:51564 10 6452 1 2025-09-16 15:49:03.389 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:49:03.503 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:49:03.011 00:00:00.041 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:49:03.307 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:49:03.436 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:49:00.406 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41282 10 6452 1 2025-09-16 15:44:30.534 00:06:00.041 TCP 179.21.23.21:38570 -> 179.21.23.23:179 8 549 1 2025-09-16 15:50:00.803 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:43144 10 6452 1 2025-09-16 15:51:01.176 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33248 10 6452 1 2025-09-16 15:52:01.575 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60360 10 6452 1 2025-09-16 15:53:01.938 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49794 10 6452 1 2025-09-16 15:48:30.532 00:06:00.007 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-16 15:54:03.499 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-16 15:54:03.512 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-16 15:54:03.659 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:54:03.647 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-16 15:54:03.730 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-16 15:54:02.336 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-09-16 15:55:02.738 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54402 10 6452 1 2025-09-16 15:56:03.108 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:34958 10 6452 1 2025-09-16 15:51:30.535 00:06:00.001 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 653 1 2025-09-16 15:57:03.534 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 10 6452 1 2025-09-16 15:58:03.933 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:38192 10 6452 1 Summary: total flows: 136, total bytes: 407461, total packets: 951, avg bps: 866, avg pps: 0, avg bpp: 428 Time window: 2025-09-16 14:55:30 - 2025-09-16 15:58:14 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0040s User: 0.0010s Wall: 0.0026s flows/second: 52003.4 Runtime: 0.0026s